~ ZHPCleaner v2017.11.11.197 by Nicolas Coolman (2017/11/11) ~ Run by Thomas (Administrator) (11/11/2017 11:58:41) ~ Web: https://www.nicolascoolman.com ~ Blog: https://nicolascoolman.eu/ ~ Facebook : https://www.facebook.com/nicolascoolman1 ~ State version : Version OK ~ Certificate ZHPCleaner: Legal ~ Type : Nettoyer ~ Report : C:\Users\Thomas\Desktop\ZHPCleaner.txt ~ Quarantine : C:\Users\Thomas\AppData\Roaming\ZHP\ZHPCleaner_Reg.txt ~ UAC : Activate ~ Boot Mode : Normal (Normal boot) Windows 10 Pro, 64-bit (Build 14393) ---\\ Service. (0) ~ Aucun élément malicieux ou superflu trouvé. ---\\ Navigateur internet. (2) SUPPRIMÉ: [ujt8dpei.default-1501072966899] - user_pref("extensions.toolbar.mindspark.hp.enabled", false); =>Adware.Bandoo SUPPRIMÉ: [ujt8dpei.default-1501072966899] - user_pref("extensions.toolbar.mindspark.lastInstalled", "inboxace@mindspark.com"); =>Adware.Bandoo ---\\ Fichier hôte. (1) ~ Le fichier hôte est légitime. (21) ---\\ Tâche planifiée. (1) SUPPRIMÉ tâche: [{565E0C9F-4863-420C-B028-55F48758A03B}] [C:\Program Files\ByteFence\ByteFence.exe (Not File) ] =>.SUP.ByteFence ---\\ Explorateur ( Dossiers, Fichiers ). (13) DEPLACÉ fichier: C:\Users\Thomas\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pilplloabdedfmialnfchjomjmpjcoej_0.localstorage =>.SUP.SearchManager DEPLACÉ fichier: C:\Windows\Prefetch\REIMAGE.EXE-02B30964.pf =>.SUP.ReimageRepair DEPLACÉ fichier: C:\Windows\Prefetch\REIMAGEPACKAGE.EXE-0FD39C38.pf =>.SUP.ReimageRepair DEPLACÉ fichier: C:\Windows\Prefetch\REIMAGEREMINDER.EXE-A9DA5B12.pf =>.SUP.ReimageRepair DEPLACÉ fichier: C:\Windows\Prefetch\REIMAGEREPAIR.EXE-754C4F26.pf =>.SUP.ReimageRepair DEPLACÉ fichier: C:\Users\Thomas\Downloads\ReimageRepair.exe [Reimage - Reimage Downloader] =>.SUP.ReimageRepair DEPLACÉ fichier: C:\Users\Thomas\AppData\Local\Temp\Reimage.log =>.SUP.ReimageRepair DEPLACÉ fichier: C:\Users\Thomas\AppData\Local\Temp\ReimagePackage.exe [Reimage - Reimage Package] =>.SUP.ReimageRepair DEPLACÉ fichier: C:\Users\Thomas\AppData\Local\Microsoft\Windows\INetCache\IE\LYOY86A5\ReimagePackage1868x64[1].exe [Reimage - Reimage Package] =>.SUP.ReimageRepair DEPLACÉ fichier: C:\Users\Thomas\AppData\Local\Microsoft\Windows\INetCache\IE\628JVEXK\ProtectorPackageRR2022x64[1].exe [Reimage - Reimage Protector Installation Package] =>.SUP.ReimageRepair DEPLACÉ fichier: C:\Windows\Reimage.ini =>.SUP.ReimageRepair DEPLACÉ dossier*: C:\Users\Thomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej =>.SUP.SearchManager DEPLACÉ dossier*: C:\Program Files\Reimage =>.SUP.ReimageRepair ---\\ Base de Registres ( Clés, Valeurs, Données ). (22) SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [https://fr.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_popjar_17_04_ss[...]] [Yahoo! Powered] =>Adware.YahooPowered SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [https://fr.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_popjar_17_04_ss[...]] [Yahoo! Powered] =>Adware.YahooPowered SUPPRIMÉ clé*: HKCU\SOFTWARE\Google\Chrome\Extensions\pilplloabdedfmialnfchjomjmpjcoej [] =>.SUP.SearchManager SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Google\Chrome\Extensions\pilplloabdedfmialnfchjomjmpjcoej [] =>.SUP.SearchManager SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\pilplloabdedfmialnfchjomjmpjcoej [] =>.SUP.SearchManager SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [https://fr.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_popjar_17_04_ssg02¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dfr%26pa%3Dwincy%26cd%3D2XzuyEtN2Y1L1Qzu0B0CyD0F0FyEyCyDtAtA0FyEtAtAzyyBtN0D0Tzu0StCzzyDtDtN1L2XzutAtFtByDtFtCtFtCtDzztN1L1Czu1StN1L1G1B1V1N2Y1L1Qzu2StB0BzztAtA0ByCzytGtA0D0FyCtGtByC0EzztGtC0DtCtDtGyBtCyBtDtC0ByDyEtAzytAtB2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0D0CzyzytAyD0BtDtG0F0AtBtAtGyEtDyCyDtGzzzztCtDtG0C0B0CtC0FyCtC0CtAtA0AyB2QtN0A0LzuyEtN1B2Z1V1T1S1NzutCtCyByDtA%26cr%3D345347844%26a%3Dwbf_popjar_17_04_ssg02%26os_ver%3D10.0%26os%3DWindows%2B10%2BPro&p={searchTerms}] =>Adware.YahooPowered SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [https://fr.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_popjar_17_04_ssg02¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dfr%26pa%3Dwincy%26cd%3D2XzuyEtN2Y1L1Qzu0B0CyD0F0FyEyCyDtAtA0FyEtAtAzyyBtN0D0Tzu0StCzzyDtDtN1L2XzutAtFtByDtFtCtFtCtDzztN1L1Czu1StN1L1G1B1V1N2Y1L1Qzu2StB0BzztAtA0ByCzytGtA0D0FyCtGtByC0EzztGtC0DtCtDtGyBtCyBtDtC0ByDyEtAzytAtB2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0D0CzyzytAyD0BtDtG0F0AtBtAtGyEtDyCyDtGzzzztCtDtG0C0B0CtC0FyCtC0CtAtA0AyB2QtN0A0LzuyEtN1B2Z1V1T1S1NzutCtCyByDtA%26cr%3D345347844%26a%3Dwbf_popjar_17_04_ssg02%26os_ver%3D10.0%26os%3DWindows%2B10%2BPro&p={searchTerms}] =>Adware.YahooPowered SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-3074540869-614040585-3104684663-1001\SOFTWARE\Reimage [] =>.SUP.ReimageRepair SUPPRIMÉ clé*: HKEY_USERS\.DEFAULT\Software\ByteFence [] =>.SUP.ByteFence SUPPRIMÉ clé: HKCU\Software\Reimage [] =>.SUP.ReimageRepair SUPPRIMÉ clé*: HKCU\Software\csastats [] =>Adware.InstallCore SUPPRIMÉ clé*: HKCU\Software\undefined [] =>.SUP.Downloader SUPPRIMÉ clé*: HKCU\Software\ProductSetup [] =>Adware.InstallCore SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\REI_AxControl.ReiEngine [ReiEngine Class] =>PUP.Optional.GetLiveSupport SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\REI_AxControl.ReiEngine.1 [ReiEngine Class] =>PUP.Optional.GetLiveSupport SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Reimage [] =>.SUP.ReimageRepair SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Microsoft\Tracing\ByteFence_RASAPI32 [] =>.SUP.ByteFence SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Microsoft\Tracing\ByteFence_RASMANCS [] =>.SUP.ByteFence SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\CLSID\{10ECCE17-29B5-4880-A8F5-EAD298611484} [ReiEngine Class] =>.SUP.ReimageRepair SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Classes\CLSID\{10ECCE17-29B5-4880-A8F5-EAD298611484}\InprocServer32 [C:\Program Files\Reimage\Reimage Repair\REI_Axcontrol.dll (Not File)] =>.SUP.ReimageRepair SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\CLSID\{801B440B-1EE3-49B0-B05D-2AB076D4E8CB} [CompReg Class] =>.SUP.ReimageRepair SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Classes\CLSID\{801B440B-1EE3-49B0-B05D-2AB076D4E8CB}\InprocServer32 [C:\Program Files\Reimage\Reimage Repair\REI_Axcontrol.dll (Not File)] =>.SUP.ReimageRepair ---\\ Récapitulatif des éléments trouvés sur votre station. (8) https://nicolascoolman.eu/2017/02/23/adware-bandoo/ =>Adware.Bandoo https://nicolascoolman.eu/2017/03/13/superfluous-bytefence/ =>.SUP.ByteFence https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.SearchManager https://nicolascoolman.eu/2017/01/27/superfluous-reimagerepair/ =>.SUP.ReimageRepair https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>Adware.YahooPowered https://nicolascoolman.eu/2017/09/19/adware-installcore-3/ =>Adware.InstallCore https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Downloader https://nicolascoolman.eu/2017/10/05/sup-systemoptimizer/ =>PUP.Optional.GetLiveSupport ---\\ Nettoyage Additionnel. (24) ~ Suppression des Clés de registre Tracing. (24) ~ Suppression des anciens rapports ZHPCleaner. (0) ---\\ Bilan de la réparation ~ Réparation réalisée avec succès. ~ Ce navigateur est absent (Opera Software) ---\\ Statistiques ~ Items scannés : 1209 ~ Items trouvés : 0 ~ Items annulés : 0 ~ Items réparés : 38 ~ End of clean in 00h00mn33s ~==================== ZHPCleaner-[R]-11112017-11_59_14.txt ZHPCleaner-[S]-11112017-11_58_25.txt